libgadu是一个用于实现Gadu-Gadu即时通讯协议的函数库。 libgadu库在解析联系人描述字段时存在拒绝服务攻击漏洞。恶意服务器向使用libgadu库的聊天客户端发送的报文中所声明的描述长度大于gg_notify_reply结构长度,就可以触发这个溢出,导致执行任意指令。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2008-4765 | osCommerce Poll Booth Add-On 'pollbooth.php' SQL注入漏洞 | |
| CVE-2008-4762 | freeSSHd rename及realpath命令拒绝服务漏洞 | |
| CVE-2008-4761 | Adam Wright HTMLTidy 'html-tidy-logic.php' 跨站脚本攻击漏洞 | |
| CVE-2008-4760 | Graphiks MyForum 'lecture.php' SQL注入漏洞 | |
| CVE-2008-4759 | BuzzScripts BuzzyWall 'download.php' 目录遍历漏洞 | |
| CVE-2008-4758 | Php-Daily 'download_file.php' 目录遍历漏洞 | |
| CVE-2008-4757 | Php-Daily 多个SQL注入漏洞 | |
| CVE-2008-4756 | Php-Daily ’add_prest_date.php’ 多个输入验证错误漏洞 | |
| CVE-2008-4755 | PozScripts Classified Ads 'gotourl.php' SQL注入漏洞 | |
| CVE-2008-4766 | Oxygen Bulletin Board 'member.php' SQL注入漏洞 | |
| CVE-2008-4772 | Questwork QuestCMS 'main.php' SQL注入漏洞 | |
| CVE-2008-4764 | Joomla! and Mambo eXtplorer 组件 'dir' 参数目录遍历漏洞 | |
| CVE-2008-4763 | WiKID wClient-PHP 'sample.php' 多个跨站脚本攻击漏洞 | |
| CVE-2008-4769 | WordPress 'index.php' cat参数目录遍历漏洞 | |
| CVE-2008-4768 | TLM CMS ’a-b-membres.php‘ nom参数 SQL注入漏洞 | |
| CVE-2008-4767 | PHP-Nuke DownloadsPlus模块任意文件上传漏洞 | |
| CVE-2008-4771 | Various IP Security Camera ActiveX Controls 'url' Attribute 缓冲区溢出漏洞 | |
| CVE-2008-4775 | phpMyAdmin 'pmd_pdf.php'模块跨站脚本漏洞 | |
| CVE-2008-4774 | Questwork QuestCMS 'main.php' 跨站脚本攻击漏洞 | |
| CVE-2008-4773 | Questwork QuestCMS 'main.php' 目录遍历漏洞 |
No comments yet